Who we are?
Data controller: Starschema Inc. (Starschema, We)
Address: 1201 Wilson Blvd., Arlington, VA 22209
Email: [email protected]
Phone: +1 415 944-5455
Who are you?
Data subject: identified or identifiable natural person, whose personal data is processed by the controller responsible for the processing. (You)
Who can take part in your data processing?
Processor: Processor is a natural or legal person, public authority, agency or other body which processes personal data on behalf of the controller.
How we work with your personal information?
Starschema committed to protecting personal data of Starschema.com and related services. We control personal data according to these principles:
- lawfully, fairly and in a transparent manner in relation to the data subject (‘lawfulness, fairness and transparency’);
- collected for specified, explicit and legitimate purposes (‘purpose limitation’);
- adequate, relevant and limited to what is necessary in relation to the purposes for which they are processed (‘data minimization’);
- accurate and, where necessary, kept up to date (‘accuracy’);
- kept in a form which permits identification of data subjects for no longer than is necessary for the purposes for which the personal data are processed ‘storage limitation’);
- processed in a manner that ensures appropriate security of the personal data, including protection against unauthorized or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organizational measures (‘integrity and confidentiality’)
Processing by Starschema and our sub-processors
- the data subject has given consent to the processing of his or her personal data for one or more specific purposes;
- processing is necessary for the performance of a contract
- processing is necessary for compliance with a legal obligation to which the controller is subject;
- processing is necessary in order to protect the vital interests of the data subject or of another natural person;
- processing and controlling of statistical purpose are necessary to use pseudonymization
How Starschema manage your consent?
- able to demonstrate your consent
- based on your choice, not forced by us
- transparently
- based on clear statement
- granularly
- accountable manner
How Starschema secure your personal data with technical and organizational measures to ensure a level of security appropriate to the risk (confidentiality and integrity)?
- the pseudonymization and encryption of personal data;
- the ability to ensure the ongoing confidentiality, integrity, availability and resilience of processing systems and services;
- the ability to restore the availability and access to personal data in a timely manner in the event of a physical or technical incident;
- a process for regularly testing, assessing and evaluating the effectiveness of technical and organizational measures for ensuring the security of the processing
- in assessing the appropriate level of security account shall be taken in particular of the risks that are presented by processing, in particular from accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to personal data transmitted, stored or otherwise processed
- documented preventive, detective and corrective controls on IT Security and Privacy
- risk assessment process for PII
- documented processes for accountability
- PII data access on “least privilige” principle
- while we have mechanisms in place to safeguard your personal information after we receive it, no transmission of data over the internet can be 100% secure.
Our Data Processors
Data Processor,
Contact,
Address,
Purpose of processing,
Privacy Policy link
1. Smartrecruiters,
225 Bush Street Suite #300, San Francisco CA 94104, USA,
Recruitment process,
https://www.smartrecruiters.co...
2. Cloudflare,
2nd Floor, 25 Lavington Street, London, SE1 0NZ,
Content delivery network,
https://www.cloudflare.com/pri...
3. Webhostinghub,
3629 Sentara Way, Virginia Beach, VA 23452,
Hosting services,
https://www.webhostinghub.com/...
4. Campaign Monitor,
https://help.campaignmonitor.c...,
41 CORSHAM ST, LONDON N1 6DR UK,
Newsletter services,
https://www.campaignmonitor.co...
5. Radics Ottó EV,
https://www.webmenedzser.hu/ka...,
8640 Fonyód, Szigligeti utca 10.,
CMS developer,
https://www.webmenedzser.hu/ad...
6. Salesforce.com, inc,
415 Mission St., 3rd Floor San Francisco, CA 94105, USA,
Client acquisition and contact maintenance,
https://www.salesforce.com/com...
7. Salesautopilot Kft.,
1024. Budapest, Margit krt. 31-33. félemelet 4-5,
Data processing system between webpage and Salesforce; Email automation for enquiries,
https://www.salesautopilot.hu/...
8. Google LLC,
https://policies.google.com/pr...,
Gordon House, Barrow Street, Dublin 4, Írország,
Mail server,
https://policies.google.com/pr...
What we expect from our data processors?
- Our data processors must comply with GDPR and Starschema privacy requirements
- Transparency and accountability
- Process only for Starschema defined purpose
- Store data as Starschema required according to legal environment expectations and information security policy
- Starschema’s data processor responsible for their data processors compliance
- We are entitled to audit our data processors
- Data security controls and measures to provide the PII confidentiality, integrity in accountable manner
- Documented privacy incident management rules
How we work with data?
Purpose |
Working process |
Controlled data |
Data retention |
Why we can control? |
Recruitment |
Starschema recruit, contact potential new employees |
Name; Address; Phone Number; Email address; CV; Photo; Date of birth; Notes of interviews etc. |
Until applied position is vacant or withdrawn consent |
Data subject consent |
Sales and customer acquisition |
We process leads from the starschema.com and business enquiries |
Name; Phone Number; Email address; Job title; Organization |
1 years from contract closure or enquiry or until withdrawn consent |
Data subject consent or vital interest |
Contracted PII processing |
We process data during our projects to provide our contractual needs for our Clients. We process this personal information based on our contracts with our Clients. It means our Clients are Data Controllers and We are in data processor role. |
Project or Data Processing contract defined PII |
Until the project closure with 30 days of grace |
Performance of contract |
Contractual needs |
Starschema third parties, supplier representatives |
Name; Phone number; Email address; Third party agreements |
5 years from the end of contract |
Performance of contract |
Newsletter, Customer support and service quality improvements |
Potential clients, clients, person who is interested in our services get information about our services in newsletter |
Name; Email address |
3 years or until unsubscribe |
Data subject consent |
Service support and manageability |
Starschema developed their Tableau extension and we would like to provide and manage our services in high quality as we can. We would like to support our registrants. tableau-tracker.starschema.com |
Name, Email, Organization, Job title |
Until the extension in use or data subject ask deletion of data belongings |
Data subject consent (double opt-in) |
How we provide your rights in practice?
Right of access
The data subject shall have the right to obtain from the controller confirmation as to whether or not personal data concerning him or her are being processed, and, where that is the case, access to the personal data and the following information
Please contact us if You would like to use your rights: [email protected]
Right to rectification
The data subject shall have the right to obtain from the controller without undue delay the rectification of inaccurate personal data concerning him or her. Taking into account the purposes of the processing, the data subject shall have the right to have incomplete personal data completed, including by means of providing a supplementary statement.
Please contact us if You would like to use your rights: [email protected]
Right to erasure
The data subject shall have the right to obtain from the controller the erasure of personal data concerning him or her without undue delay and the controller shall have the obligation to erase personal data without undue delay.
Please contact us if You would like to use your rights: [email protected]
Right to restriction of processing
The data subject shall have the right to obtain from the controller restriction of processing.
Please contact us if You would like to use your rights: [email protected]
Right to data portability
The data subject shall have the right to receive the personal data concerning him or her, which he or she has provided to a controller, in a structured, commonly used and machine-readable format and have the right to transmit those data to another controller without hindrance from the controller to which the personal data have been provided.
Please contact us if You would like to use your rights: [email protected]
Right to object
The data subject shall have the right to object, on grounds relating to his or her particular situation, at any time to processing of personal data concerning him or her.
Please contact us if You would like to use your rights: [email protected]
Automated individual decision-making, including profiling
The data subject shall have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning him or her or similarly significantly affects him or her.
Notification of a personal data breach to the data subject
When the personal data breach is likely to result in a high risk to the rights and freedoms of natural persons, the controller shall communicate the personal data breach to the data subject without undue delay.
Notification of a personal data breach to the supervisory authority
In the case of a personal data breach, the controller shall without undue delay and, where feasible, not later than 72 hours after having become aware of it, notify the personal data breach to the supervisory authority competent, unless the personal data breach is unlikely to result in a risk to the rights and freedoms of natural persons. Where the notification to the supervisory authority is not made within 72 hours, it shall be accompanied by reasons for the delay.
How can You complain?
Complaints relating to Starschema use of personal data may be sent by email - with the details of your complaint to [email protected] We will look into and respond to any complaints we receive within 30 days.
You also have the right to complain with the National Authority for Data Protection and Freedom of Information or seek remedy in the courts if you believe that your rights have been violated. For further information on your rights and how to complain to the Authority, please refer to http://naih.hu/panaszuegyintezes-rendje.html .
Starschema profiling activities
Starschema use automatized profiling activities in newsletters for purpose of user satisfaction and to provide better quality of service. We are profiling according to retention time and content type of newsletters.
Cookies
Our Site uses cookies to improve Our Site’s performance and to enhance your browsing experience. Certain areas of Our Site also use cookies to understand more about you, so we can offer you a more personalized browsing experience.
What is a cookie?
A "cookie" is technology that allows Our Site to store tokens of
information (an 'identifier') in your browser used only by Our Site
while you are on Our Site. Cookies are not used to determine the
personal identity of anyone who is merely visiting Our Site. They serve
to help us track traffic patterns to determine a user’s preferred
location and language so that we can direct them to the correct country
home page when they visit Our Site.
On certain pages of Our Site, cookies are used to help us track your interests while you browse the internet, so we can tailor more relevant advertising to you, and to understand what is important to you.
You have the ability to accept or decline cookies. Most Web browsers automatically accept cookies, but you can usually modify your browser setting to decline cookies if you prefer. If you choose to decline cookies, you may not be able to fully experience the features of the Starschema services or websites you visit.
We take reasonable measures to prevent linking of information we receive from Google with any of your personally identifiable information.
For details about the cookies used by Our Site, visit our Cookie Policy page.